GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,785
Erlang
36
GitHub Actions
29
Go
2,368
Maven
5,000+
npm
3,988
NuGet
720
pip
3,779
Pub
12
RubyGems
926
Rust
981
Swift
38
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
260,988 advisories
Filter by severity
The Lead Form Data Collection to CRM plugin for WordPress is vulnerable to unauthorized...
High
Unreviewed
CVE-2025-5692
was published
Jul 2, 2025
In Tenable Nessus versions prior to 10.8.5 on a Windows host, it was found that a non...
High
Unreviewed
CVE-2025-36630
was published
Jul 2, 2025
No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to...
High
Unreviewed
CVE-2025-49741
was published
Jul 2, 2025
linjiashop <=0.9 is vulnerable to Incorrect Access Control. When using the default-generated JWT...
Unknown
Unreviewed
CVE-2025-52101
was published
Jul 1, 2025
An exposure of sensitive information vulnerability was identified in GitHub Enterprise Server...
Moderate
Unreviewed
CVE-2025-6600
was published
Jul 1, 2025
Improper mstatus.SUM bit retention (non-zero) in Open-Source RISC-V Processor commit f517abb...
Unknown
Unreviewed
CVE-2025-45006
was published
Jul 1, 2025
Missing Authorization vulnerability in POSIMYTH Innovation The Plus Addons for Elementor Pro...
Moderate
Unreviewed
CVE-2025-46259
was published
Jul 1, 2025
The Contec Co.,Ltd. CONPROSYS HMI System (CHS) exposes a PHP phpinfo() debug page to...
Moderate
Unreviewed
CVE-2025-34081
was published
Jul 1, 2025
A remote code execution vulnerability exists in HPE Insight Remote Support (IRS) prior to v7.15.0...
Critical
Unreviewed
CVE-2025-37099
was published
Jul 1, 2025
YONO SBI: Banking & Lifestyle v1.23.36 was discovered to use unencrypted communicatons, possibly...
High
Unreviewed
CVE-2025-45080
was published
Jul 1, 2025
Insufficient validation of the screen lock mechanism in Trust Wallet v8.45 allows physically...
Moderate
Unreviewed
CVE-2025-52294
was published
Jul 1, 2025
Misconfigured settings in IITB SSO v1.1.0 allow attackers to access sensitive application data.
High
Unreviewed
CVE-2025-45081
was published
Jul 1, 2025
Incorrect access control in Ullu (Android version v2.9.929 and IOS version v2.8.0) allows...
Moderate
Unreviewed
CVE-2025-45083
was published
Jul 1, 2025
A vulnerability, which was classified as critical, has been found in Campcodes Employee...
Moderate
Unreviewed
CVE-2025-6961
was published
Jul 1, 2025
Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the addWifiMacFilter function via...
Moderate
Unreviewed
CVE-2025-50641
was published
Jul 1, 2025
A vulnerability, which was classified as critical, was found in Campcodes Employee Management...
Moderate
Unreviewed
CVE-2025-6962
was published
Jul 1, 2025
The Contec Co.,Ltd. CONPROSYS HMI System (CHS) is vulnerable to Cross-Site Scripting (XSS) in the...
Moderate
Unreviewed
CVE-2025-34080
was published
Jul 1, 2025
It was discovered that dpkg-deb does not properly sanitize directory permissions when extracting...
High
Unreviewed
CVE-2025-6297
was published
Jul 1, 2025
A vulnerability has been found in Campcodes Employee Management System 1.0 and classified as...
Moderate
Unreviewed
CVE-2025-6963
was published
Jul 1, 2025
The Conversios – Google Analytics 4 (GA4), Meta Pixel & more Via Google Tag Manager For...
Moderate
Unreviewed
CVE-2024-6288
was published
Jul 1, 2025
A vulnerability was found in Campcodes Employee Management System 1.0. It has been rated as...
Moderate
Unreviewed
CVE-2025-6958
was published
Jul 1, 2025
Intelbras RX1500 Router v2.2.17 and before is vulnerable to Integer Overflow. The websReadEvent...
Unknown
Unreviewed
CVE-2025-50404
was published
Jul 1, 2025
An authentication bypass vulnerability exists in AVTECH IP camera, DVR, and NVR devices’ streamd...
Moderate
Unreviewed
CVE-2025-34065
was published
Jul 1, 2025
A path traversal vulnerability exists in HPE Insight Remote Support (IRS) prior to v7.15.0.646.
High
Unreviewed
CVE-2025-37098
was published
Jul 1, 2025
An improper certificate validation vulnerability exists in AVTECH IP cameras, DVRs, and NVRs due...
High
Unreviewed
CVE-2025-34066
was published
Jul 1, 2025
ProTip!
Advisories are also available from the
GraphQL API